--- GSD JSON ---
{
"vendor_name": "Apple",
"product_name": "iPhone, iPad",
"product_version": "ALL",
"vulnerability_type": "CWE-158: Improper Neutralization of Null Byte or NUL Character",
"affected_component": "QR/Barcode Scanner",
"attack_vector": "Phishing, Social engineering",
"impact": "As other scanners checked, such as on various Android devices, escape or strip the QR with embedded NUL - this can lead to various attacks including phishing (Apple users will see something different than other users) and resulting in this vulnerability extending to other applications that rely on the Apple scanner",
"credit": "Erez Kalman - @kaerez",
"references": [
"https://twitter.com/kaerez/status/1527228754862686208"
],
"reporter": "kaerez",
"reporter_id": 5103874,
"notes": "Prior to this disclosure Apple was approached; Apple has deemed the current behavior of exiting at the NUL character as correct behavior (ignoring the impacts) and refused to open a CVE or address any further.",
"description": "In Apple iPhone, iPad version ALL a CWE-158: Improper Neutralization of Null Byte or NUL Character exists in the QR/Barcode Scanner that can be attacked via Phishing, Social engineering resulting in As other scanners checked, such as on various Android devices, escape or strip the QR with embedded NUL - this can lead to various attacks including phishing (Apple users will see something different than other users) and resulting in this vulnerability extending to other applications that rely on the Apple scanner"
}
--- GSD JSON ---
/cc @kaerez